4

CVE-2024-37387

Use of potentially dangerous function issue exists in Ricoh Streamline NX PC Client. If this vulnerability is exploited, files in the PC where the product is installed may be altered.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerRICOH COMPANY, LTD.
Produkt Ricoh Streamline NX PC Client
Version ver.3.2.1.19
Status affected
Version ver.3.3.1.3
Status affected
Version ver.3.3.2.201
Status affected
Version ver.3.4.3.1
Status affected
Version ver.3.5.1.201 (ver.3.5.1.200op1)
Status affected
Version ver.3.6.100.53
Status affected
Version and ver.3.6.2.1
Status affected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.16% 0.057
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
134c704f-9b21-4f2e-91b3-4a467353bcc0 4 2.5 1.4
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CWE-676 Use of Potentially Dangerous Function

The product invokes a potentially dangerous function that could introduce a vulnerability if it is used incorrectly, but the function can also be used safely.

https://jvn.jp/en/jp/JVN00442488/
https://www.ricoh.com/products/security/vulnerabilities/vul?id=ricoh-2024-000007